Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 93098 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

could someone look over my netstat

netstat malware networking

  • Please log in to reply
No replies to this topic

#1 LongLiveTheKing

LongLiveTheKing

    New Member

  • Authentic Member
  • Pip
  • 14 posts

Posted 26 October 2016 - 04:37 AM

Active Connections

  Proto  Local Address          Foreign Address        State           PID
  TCP    0.0.0.0:80             0.0.0.0:0              LISTENING       4
 Can not obtain ownership information
  TCP    0.0.0.0:135            0.0.0.0:0              LISTENING       888
  RpcSs
 [svchost.exe]
  TCP    0.0.0.0:445            0.0.0.0:0              LISTENING       4
 Can not obtain ownership information
  TCP    0.0.0.0:49664          0.0.0.0:0              LISTENING       640
 Can not obtain ownership information
  TCP    0.0.0.0:49665          0.0.0.0:0              LISTENING       708
  EventLog
 [svchost.exe]
  TCP    0.0.0.0:49666          0.0.0.0:0              LISTENING       1060
  Schedule
 [svchost.exe]
  TCP    0.0.0.0:49667          0.0.0.0:0              LISTENING       720
 Can not obtain ownership information
  TCP    0.0.0.0:49670          0.0.0.0:0              LISTENING       728
 [lsass.exe]
  TCP    127.0.0.1:43227        0.0.0.0:0              LISTENING       2168
 [mbamservice.exe]
  TCP    127.0.0.1:49988        127.0.0.1:49989        ESTABLISHED     420
 [firefox.exe]
  TCP    127.0.0.1:49989        127.0.0.1:49988        ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:139      0.0.0.0:0              LISTENING       4
 Can not obtain ownership information
  TCP    192.168.1.215:49675    65.52.108.204:443      ESTABLISHED     4064
 [Explorer.EXE]
  TCP    192.168.1.215:49758    131.253.34.245:443     ESTABLISHED     1060
  ProfSvc
 [svchost.exe]
  TCP    192.168.1.215:50005    54.69.222.145:443      ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50219    23.204.109.42:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50221    23.204.109.42:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50307    52.5.212.140:443       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50335    52.45.250.84:443       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50337    23.204.109.42:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50375    23.204.109.40:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50376    23.204.109.40:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50496    23.204.109.42:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50588    199.182.216.166:80     ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50590    23.204.109.42:80       TIME_WAIT       0
  TCP    192.168.1.215:50592    23.204.109.42:80       TIME_WAIT       0
  TCP    192.168.1.215:50593    23.204.109.42:80       TIME_WAIT       0
  TCP    192.168.1.215:50594    23.204.109.42:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50596    23.204.109.40:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50598    23.204.109.40:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50608    23.204.109.42:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50611    52.5.212.140:443       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50623    74.125.138.95:80       TIME_WAIT       0
  TCP    192.168.1.215:50624    199.182.216.166:80     ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50625    199.182.216.166:80     ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50627    52.5.212.140:443       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50628    52.5.212.140:443       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50629    199.182.216.166:80     TIME_WAIT       0
  TCP    192.168.1.215:50630    52.5.212.140:443       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50631    23.204.109.42:80       TIME_WAIT       0
  TCP    192.168.1.215:50632    23.204.109.42:80       TIME_WAIT       0
  TCP    192.168.1.215:50634    199.182.216.204:80     TIME_WAIT       0
  TCP    192.168.1.215:50635    74.125.138.95:80       TIME_WAIT       0
  TCP    192.168.1.215:50636    23.204.109.40:80       TIME_WAIT       0
  TCP    192.168.1.215:50637    23.204.109.40:80       TIME_WAIT       0
  TCP    192.168.1.215:50638    23.204.109.40:80       TIME_WAIT       0
  TCP    192.168.1.215:50639    199.182.216.204:80     TIME_WAIT       0
  TCP    192.168.1.215:50640    199.182.216.204:80     TIME_WAIT       0
  TCP    192.168.1.215:50641    199.182.216.204:80     TIME_WAIT       0
  TCP    192.168.1.215:50642    74.125.138.95:80       TIME_WAIT       0
  TCP    192.168.1.215:50643    23.204.109.40:80       TIME_WAIT       0
  TCP    192.168.1.215:50644    23.204.109.40:80       TIME_WAIT       0
  TCP    192.168.1.215:50645    23.204.109.40:80       TIME_WAIT       0
  TCP    192.168.1.215:50646    199.182.216.204:80     TIME_WAIT       0
  TCP    192.168.1.215:50647    199.182.216.204:80     TIME_WAIT       0
  TCP    192.168.1.215:50648    199.182.217.23:443     ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50649    216.58.194.74:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50650    23.204.109.40:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50651    23.204.109.40:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50652    23.204.109.40:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50653    23.204.109.40:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50654    23.204.109.40:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50655    23.204.109.40:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50656    104.20.60.209:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50663    23.72.100.207:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50664    172.217.4.131:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50665    172.217.4.131:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50666    104.28.15.88:443       TIME_WAIT       0
  TCP    192.168.1.215:50667    104.28.15.88:443       TIME_WAIT       0
  TCP    192.168.1.215:50668    104.28.15.88:443       TIME_WAIT       0
  TCP    192.168.1.215:50669    104.28.15.88:443       TIME_WAIT       0
  TCP    192.168.1.215:50670    104.28.15.88:443       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50671    185.3.92.176:80        TIME_WAIT       0
  TCP    192.168.1.215:50673    104.28.15.88:443       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50675    23.72.213.168:80       TIME_WAIT       0
  TCP    192.168.1.215:50676    23.72.213.168:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50677    23.72.100.207:80       TIME_WAIT       0
  TCP    192.168.1.215:50678    23.72.100.207:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50679    172.217.4.162:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50680    172.217.4.162:80       TIME_WAIT       0
  TCP    192.168.1.215:50681    54.192.141.21:443      ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50682    54.192.141.21:443      TIME_WAIT       0
  TCP    192.168.1.215:50683    54.192.141.21:443      TIME_WAIT       0
  TCP    192.168.1.215:50684    54.192.141.21:443      ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50686    54.230.141.223:80      ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50687    54.230.141.223:80      ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50688    54.230.141.223:80      ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50689    54.230.141.223:80      ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50690    54.230.141.223:80      TIME_WAIT       0
  TCP    192.168.1.215:50691    54.230.141.223:80      TIME_WAIT       0
  TCP    192.168.1.215:50692    52.33.152.199:443      ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50693    52.33.152.199:443      TIME_WAIT       0
  TCP    192.168.1.215:50694    104.20.60.209:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50695    104.20.60.209:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50696    104.20.60.209:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50697    104.20.60.209:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50698    104.20.60.209:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50701    172.217.4.170:80       ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50703    172.217.4.170:80       TIME_WAIT       0
  TCP    192.168.1.215:50704    31.13.77.12:443        ESTABLISHED     420
 [firefox.exe]
  TCP    192.168.1.215:50708    216.58.217.200:80      TIME_WAIT       0
  TCP    192.168.1.215:50709    172.217.4.170:80       TIME_WAIT       0
  TCP    192.168.1.215:50710    172.217.4.170:80       TIME_WAIT       0
  TCP    [::]:80                [::]:0                 LISTENING       4
 Can not obtain ownership information
  TCP    [::]:135               [::]:0                 LISTENING       888
  RpcSs
 [svchost.exe]
  TCP    [::]:445               [::]:0                 LISTENING       4
 Can not obtain ownership information
  TCP    [::]:49664             [::]:0                 LISTENING       640
 Can not obtain ownership information
  TCP    [::]:49665             [::]:0                 LISTENING       708
  EventLog
 [svchost.exe]
  TCP    [::]:49666             [::]:0                 LISTENING       1060
  Schedule
 [svchost.exe]
  TCP    [::]:49667             [::]:0                 LISTENING       720
 Can not obtain ownership information
  TCP    [::]:49670             [::]:0                 LISTENING       728
 [lsass.exe]
  UDP    0.0.0.0:123            *:*                                    1284
  W32Time
 [svchost.exe]
  UDP    0.0.0.0:500            *:*                                    1060
  IKEEXT
 [svchost.exe]
  UDP    0.0.0.0:4500           *:*                                    1060
  IKEEXT
 [svchost.exe]
  UDP    0.0.0.0:5050           *:*                                    1284
 [svchost.exe]
  UDP    0.0.0.0:5353           *:*                                    1460
  Dnscache
 [svchost.exe]
  UDP    0.0.0.0:5355           *:*                                    1460
  Dnscache
 [svchost.exe]
  UDP    192.168.1.215:137      *:*                                    4
 Can not obtain ownership information
  UDP    192.168.1.215:138      *:*                                    4
 Can not obtain ownership information
  UDP    [::]:123               *:*                                    1284
  W32Time
 [svchost.exe]
  UDP    [::]:500               *:*                                    1060
  IKEEXT
 [svchost.exe]
  UDP    [::]:4500              *:*                                    1060
  IKEEXT
 [svchost.exe]
  UDP    [::]:5353              *:*                                    1460


    Advertisements

Register to Remove

Related Topics




Also tagged with one or more of these keywords: netstat, malware, networking

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users